ZeroHour

CVE-2020-5686

CVSS 3.1
7.5 high
EPSS
1%p65
Published
()
Modified
Description

Incorrect implementation of authentication algorithm issue in UNIVERGE SV9500 series from V1 to V7and SV8500 series from S6 to S8 allows an attacker to access the remote system maintenance feature and obtain the information by sending a specially crafted request to a specific URL.

Vendors
nec
Products
univerge sv9500 firmware, univerge sv8500 firmware
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.